Accepted spip 3.2.4-1+deb10u10 (source) into oldstable
- To: debian-lts-changes@lists.debian.org, dispatch@tracker.debian.org
- Subject: Accepted spip 3.2.4-1+deb10u10 (source) into oldstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Mon, 27 Feb 2023 19:40:21 +0000
- Debian: DAK
- Debian-architecture: source
- Debian-archive-action: accept
- Debian-changes: spip_3.2.4-1+deb10u10_source.changes
- Debian-source: spip
- Debian-suite: oldstable
- Debian-version: 3.2.4-1+deb10u10
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.seger; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=kr+lzHEQ6YjEjFw6ZdyV/60vTtssz/EaZtX0FEy8r+Y=; b=KQr53yoAL73qioh7qmaUbxi0gq Xbm0S4Fkb20/boV6leiwhfbHhn/DtXS8NZh9LJ6LCKc7M5dOAWPlFOQ7mHGTCqYSr+pcuX7qRgGD7 VMycadpRtgcvNk3XlnBieL2FuxmmMjrW5YagtdaUEuPeXgFIzkEvdgWfJ7Ngjv5tKaGd+fcF8WvZI +d4hCgjQC5OYEt8rXyD9Vegt0NwTnEp8bcNTA4EglhpdDqc4HNIwUK8ADMfFMXRqR0ajSb+9tITOb I7ou+0wIBMISnrjvLGWmRcMfXyfYJfVt1G+QN4MxD20zHWhAl4V6Zdwr2pVjVJa+6nHIKU2pkwPE3 oSo4wwow==;
- Mail-followup-to: debian-lts@lists.debian.org
- Message-id: <E1pWjMD-005ARX-El@seger.debian.org>
- Reply-to: debian-lts@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 27 Feb 2023 18:23:16 +0100
Source: spip
Architecture: source
Version: 3.2.4-1+deb10u10
Distribution: buster-security
Urgency: high
Maintainer: David Prévot <taffit@debian.org>
Changed-By: Guilhem Moulin <guilhem@debian.org>
Changes:
spip (3.2.4-1+deb10u10) buster-security; urgency=high
.
* Non-maintainer upload by the LTS Security Team.
* Backport security fixes from v3.2.17:
+ fix SQL injection vulnerability in admin space;
+ sanitize SQL values; and
+ deny password change for authors without login.
* Backport security fixes from v3.2.18:
+ fix remote code execution vulnerability in public and private spaces.
Checksums-Sha1:
1d937adf9d569d71e952694494e6990a646b8953 1841 spip_3.2.4-1+deb10u10.dsc
3a84bfdf4f65c0631b7e39d9d7803efe3e2e75f6 110596 spip_3.2.4-1+deb10u10.debian.tar.xz
f95c26a576077e19ca3b84d46df4adad30b9e1d0 8347 spip_3.2.4-1+deb10u10_amd64.buildinfo
Checksums-Sha256:
0bece18ddf6788ea0bd0e4ef7b19e0a01d642b869a9442ab20842bba72a2c3eb 1841 spip_3.2.4-1+deb10u10.dsc
988eb8714ac160ec8b675f83e06b8c2b81847be401d59441b9d7241c1fc10789 110596 spip_3.2.4-1+deb10u10.debian.tar.xz
a8fffb8e6ba98d9adad2ae36cf7e422f6f6965a2124b320480f6a326f3382deb 8347 spip_3.2.4-1+deb10u10_amd64.buildinfo
Files:
5e20e36f136e5d461f03628845525c66 1841 web optional spip_3.2.4-1+deb10u10.dsc
66005249f15151e11aac766e10d9d491 110596 web optional spip_3.2.4-1+deb10u10.debian.tar.xz
26f4528e276c3e5df2af5fd1f328e18e 8347 web optional spip_3.2.4-1+deb10u10_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=Zlk5
-----END PGP SIGNATURE-----